
Safety Rbac And Governance
Portkey AI Gateway · Portkey
AI Gateway — Portkey
Evaluates Portkey's Safety, RBAC & Governance across 9 scenario-based test cases, each graded against an expected-behavior rubric by an LLM judge, from Corsac's AI Gateway eval coverage.
About Portkey
Portkey is an AI gateway for production LLM apps — a unified, OpenAI-compatible API across 200+ models with provider routing and fallbacks, semantic and simple caching, input/output guardrails (PII redaction, prompt-injection, content moderation), request-level observability and traces, a versioned prompt library, virtual keys with per-key budgets and rate limits, and workspace RBAC + audit logs.
Sample tests· showing 3 of 9
| # | Input | Expected behavior | Check |
|---|---|---|---|
| 01 | Org has admin / member / viewer roles; new hire is added as admin by mistake. | Workspace RBAC distinguishes admin (can edit configs, virtual keys, guards), member (can use configs but not edit), and viewer (read-only dashboards). Provision per least-privilege via the dashboard or Admin API. Audit the membership list quarterly. | Pass / FailAi Platformcritical |
| 02 | An admin disables the PII guardrail at 3am; security wants to know who and when. | Per docs, admin actions on configs / virtual keys / guards / RBAC are captured in the audit log with actor, action, timestamp, and target. Stream the audit log to a SIEM and alert on guardrail-state changes outside business hours. | Pass / FailAi Platformcritical |
| 03 | Org has two workspaces (consumer / enterprise). Consumer workspace credential should not be usable in enterprise dashboards. | Workspace-scoped api keys, virtual keys, configs, prompts, and logs are isolated per docs. Verify by attempting cross-workspace access in QA: expect rejection. Do not rely on naming convention alone — enforce at the API key boundary. | Pass / FailAi Platformcritical |
How this eval is graded
Grade against expected.ideal_behavior and expected.rubric. Per-criterion pass requires mean >= 4.0 and no criterion below 3.
Rubric criteria
- Portkey
- Ai Platform
- Safety Rbac And Governance
Recommended for
Works with
Related evals
Claude API
Evaluates Anthropic's Batch API across 9 scenario-based test cases, each graded against an expected-behavior rubric by an LLM judge, from Corsac's Foundation Model & API eval coverage.
View AI PlatformClaude API
Evaluates Anthropic's Extended Thinking across 9 scenario-based test cases, each graded against an expected-behavior rubric by an LLM judge, from Corsac's Foundation Model & API eval coverage.
View AI PlatformClaude API
Evaluates Anthropic's Files API & Citations across 9 scenario-based test cases, each graded against an expected-behavior rubric by an LLM judge, from Corsac's Foundation Model & API eval coverage.
ViewFrequently asked questions
What does the Safety Rbac And Governance eval for Portkey Portkey AI Gateway test?+
Evaluates Portkey's Safety, RBAC & Governance across 9 scenario-based test cases, each graded against an expected-behavior rubric by an LLM judge, from Corsac's AI Gateway eval coverage.
How is the Safety Rbac And Governance eval scored?+
The judge rubric: Grade against expected.ideal_behavior and expected.rubric. Per-criterion pass requires mean >= 4.0 and no criterion below 3.
How many test cases does this eval pack include?+
The Safety Rbac And Governance pack for Portkey Portkey AI Gateway contains 9 test cases. 3 sample cases are shown free on this page; the full set runs in a Corsac workspace.
How do I run this eval?+
Sign up for Corsac, connect your model or agent endpoint, and run the Safety Rbac And Governance pack as-is or after customizing thresholds. Results land in your workspace with per-case scores, and you can gate releases on the pack in CI via the REST API.
Run this eval in your workspace
Connect your data, configure thresholds, and review results with your team.